The future is what you make it. When you join Honeywell, you become a member of our global team of thinkers, innovators, dreamers and doers who make the things that make the future. That means changing the way we fly, fueling jets in an eco-friendly way, keeping buildings smart and safe and even making it possible to breathe on Mars. Working at Honeywell isn\'t just about developing cool things. That\'s why all of our employees enjoy access to dynamic career opportunities across different fields and industries. Are you ready to help us make the future?Honeywell Connected Enterprise (HCE) is a global leader for products and technologies that are installed in more than 10 million buildings, aircraft, and facilities worldwide. We are a pioneer in the Internet of Things, developing the next generation of connected offerings. Are you someone who wants to drive real improvements into real products in an environment which has a strong organizational support for product security?KEY RESPONSIBILITIES\xc2\xb7 Conduct design review of the core platforms in building the best and most secure Honeywell products in Azure Cloud\xc2\xb7 Drive secure product development using existing standards and practices, staying abreast of emerging threats, security practices, and technologies in the cloud\xc2\xb7 Influence decision-makers and stakeholders, improve secure coding practices, security requirements, and design\xc2\xb7 Regularly participate in PI Planning and Scrum Meetings to ensure that security is at the forefront of development and product management mind\xc2\xb7 Provide product security assessment reports to the Senior Management, Development Managers and Product Managers on a regular basis\xc2\xb7 Define and continuously improve Honeywell Secure SDLC process by simplifying and automating to match delivery speed of development teams\xc2\xb7 Drive secure engagement and architecture including threat modeling, vulnerability and risk assessment, analysis of findings from penetration tests, and tools (e.g., SAST, SCA, Container vulnerability scans)\xc2\xb7 Drive incident response investigation, ensure coordination for remediation plan and execution\xc2\xb7 Scope and drive security testing of products, perform results assessments, and assist in remediation strategies with engineering\xc2\xb7 Mentor and coach engineering and security architects in secure SDLC practices, train and engage security advocatesYOU MUST HAVE\xc2\xb7 Bachelor\'s degree\xc2\xb7 8+ years of experience of application security architecture for any public cloud such as AWS, Azure, GCP\xc2\xb7 5+ years of programming experienceWE VALUE\xc2\xb7 Experience in architecting enterprise class high-volume high-performance software products\xc2\xb7 Secure software development lifecycle (SSDLC) experience\xc2\xb7 Rich software development background\xc2\xb7 Certifications in Secure Software Lifecycle or Cloud Security demonstrating deep practical knowledge, such as CSSLP or CCSP\xc2\xb7 Azure, AWS or GCP Security or Solutions Architecture Certifications\xc2\xb7 Understanding of the challenges operating trusted infrastructure in public cloud environments, as well as on-premises.\xc2\xb7 Ability to drive security concepts and practices into development teams, as well as communicate security risks, threats, and mitigation strategies\xc2\xb7 Strong interpersonal skills with the ability to facilitate diverse groups, help negotiate priorities, and resolve conflicts among project partners\xc2\xb7 Understanding of Agile software development practices\xc2\xb7 In-depth knowledge and understanding of OWASP Top 10 and CWE Top 25 with experience in assessment and providing remediation strategies\xc2\xb7 Experiences with DevOps (CI/CD) & SDLC\xc2\xb7 Master\'s degree\xc2\xb7 Strong interpersonal skills with the ability to facilitate diverse groups, help negotiate priorities, and resolve conflicts among project partners\xc2\xb7 Passion for achieving results and continual self-improvementAdditional Information
MNCJobsIndia.com will not be responsible for any payment made to a third-party. All Terms of Use are applicable.